中国科学院软件研究所机构知识库
Advanced  
ISCAS OpenIR  > 中科院软件所  > 中科院软件所
题名:
基于IPSec的安全路由器的设计与实现
作者: 安黎
答辩日期: 2003
专业: 计算机应用技术
授予单位: 中国科学院软件研究所
授予地点: 中国科学院软件研究所
学位: 博士
关键词: IPSec协议 ; 虚拟专用网VPN ; 安全路由器 ; 硬件加密
其他题名: Design and Implementation of Security Router with IPSec
摘要: 随着越来越多的个人和机构联入互连网,网络安全问题成了世界各地研究的焦点。为了解决这个问题,实现网络信息传输的保密性、完整性、身份认证等安全特征,我们着手对IPSec安全协议体系和虚拟专用网VPN技术进行研究。本文从网络安全的现状出发,详细介绍了安全协议IPSec技术和虚拟专用网VPN技术的原理,重点论述了对基于IPSec的安全路由器R101的设计与实现,并对R101的功能和性能进行测试。全文共分五章。第一章简要介绍了网络安全的含义和关键技术。第二章详细介绍了IPSec和VPN网络安全技术的原理,包括VPN的含义和IPSec协议族。第三章是本论文的重点,提出了安全路由器的总体设计思想和体系结构,主要包括工Psec在Linux操作系统下的实现和对硬件加密的设计实现,以及对国家安全标准规定的各项安全功能的支持。第四章对R101的功能和性能进行测试,并获得测试结论。第五章是全文的总结,提出对R101改进的意见和未来的发展方向。
英文摘要: With more and more people and organizations connected to the Internet, network security has become a major concern and the focus of extensive research throughout the world. To solve this problem, and to provide confidentiality, integrity and authentication for information transmission on the network, we engaged on the research of IPSec protocol and Virtual Private Network (VPN). This paper starts with the background information on the status of network security, followed by a brief introduction of the theories of IPSec and VPN. The design and implementation of security router R101 with IPSec are described in detail. The tests of the functionality and capability of R101 and their results are also discussed. This thesis consists of five chapters. The first chapter introduces the background information of network security and key technologies. The second chapter surveys the theories of IPSec and VPN, which includes the meaning of VPN and several protocols of IPSec. The third chapter, which is the main body of the thesis, describes the overall design strategy, and the router architecture. The Linux-based implementation of IPsec, the design of Hardware-based Encryption, and the support of security functions specified by national standards on IT security are discussed with emphasis. In chapter 4, we present the tests of the function and capability of R101 and their results. The last chapter draws the conclusion of our study, points out the recommendations on improving R101, and indicates the future research directions of the system.
语种: 中文
内容类型: 学位论文
URI标识: http://ir.iscas.ac.cn/handle/311060/5598
Appears in Collections:中科院软件所

Files in This Item:
File Name/ File Size Content Type Version Access License
LW011239.pdf(2007KB)----限制开放-- 联系获取全文

Recommended Citation:
安黎. 基于IPSec的安全路由器的设计与实现[D]. 中国科学院软件研究所. 中国科学院软件研究所. 2003-01-01.
Service
Recommend this item
Sava as my favorate item
Show this item's statistics
Export Endnote File
Google Scholar
Similar articles in Google Scholar
[安黎]'s Articles
CSDL cross search
Similar articles in CSDL Cross Search
[安黎]‘s Articles
Related Copyright Policies
Null
Social Bookmarking
Add to CiteULike Add to Connotea Add to Del.icio.us Add to Digg Add to Reddit
所有评论 (0)
暂无评论
 
评注功能仅针对注册用户开放,请您登录
您对该条目有什么异议,请填写以下表单,管理员会尽快联系您。
内 容:
Email:  *
单位:
验证码:   刷新
您在IR的使用过程中有什么好的想法或者建议可以反馈给我们。
标 题:
 *
内 容:
Email:  *
验证码:   刷新

Items in IR are protected by copyright, with all rights reserved, unless otherwise indicated.

 

 

Valid XHTML 1.0!
Copyright © 2007-2017  中国科学院软件研究所 - Feedback
Powered by CSpace